Mingw-w64 version 5.0.3 and earlier, 5.0.4, 6.0.0 and 7.0.0 contains an Improper Null Termination (CWE-170) vulnerability in mingw-w64-crt (libc)->(v)snprintf that can result in The bug may be used to corrupt subsequent string functions. This attack appear to be exploitable via Depending on the usage, worst case: network.
{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "3.1.0-1"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "3.1.0-1"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "3.1.0-1"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "3.1.0-1"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "3.1.0-1"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "4.0.4-2"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "4.0.4-2"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "4.0.4-2"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "4.0.4-2"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "4.0.4-2"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "5.0.3-1"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "5.0.3-1"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "5.0.3-1"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "5.0.3-1"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "5.0.3-1"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "7.0.0-2"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "7.0.0-2"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "7.0.0-2"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "7.0.0-2"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "7.0.0-2"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "8.0.0-1"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "8.0.0-1"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "8.0.0-1"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "8.0.0-1"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "8.0.0-1"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "11.0.1-3build1"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "11.0.1-3build1"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "11.0.1-3build1"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "11.0.1-3build1"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "11.0.1-3build1"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "12.0.0-3"
}
]
}{
"binaries": [
{
"binary_name": "mingw-w64",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-common",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-i686-dev",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-tools",
"binary_version": "12.0.0-3"
},
{
"binary_name": "mingw-w64-x86-64-dev",
"binary_version": "12.0.0-3"
}
]
}